Back to search
CVE-2017-5973
Published: Mar 27, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
The xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors related to control transfer descriptor sequence.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[qemu-devel] 20170206 [PATCH] xhci: apply limits to loops
mailing-list
x_refsource_MLIST
[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=1421626
x_refsource_CONFIRM
RHSA-2017:2392
vendor-advisory
x_refsource_REDHAT
GLSA-201704-01
vendor-advisory
x_refsource_GENTOO
[oss-security] 20170214 CVE-2017-5973 Qemu: usb: infinite loop while doing control transfer in xhci_kick_epctx
mailing-list
x_refsource_MLIST
96220
vdb-entry
x_refsource_BID
RHSA-2017:2408
vendor-advisory
x_refsource_REDHAT
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now